System Compliance and Governance Manager
United States
Full Time Mid-level / Intermediate USD 122K - 172K
- Remote-first
- Website
- @HashiCorp 𝕏
- GitHub
- Search
HashiCorp
HashiCorp helps organizations automate multi-cloud and hybrid environments with Infrastructure Lifecycle Management and Security Lifecycle Management.About the role:
The System Compliance and Governance Manager role will support the Corporate Digital Transformation team to enable strategic tech initiatives. This critical role will be responsible for establishing and maintaining robust governance frameworks that ensure that AI, digital adoption, knowledge management, Atlassian and other R&D-relevant systems and processes are implemented, used, and maintained in compliance with internal policies, relevant industry standards, and regulatory requirements.
This is an individual contributor role reporting to our Director, Digital Workplace Strategy and Delivery Excellence.
What you’ll do (responsibilities):
Develop and Implement Governance Frameworks:
- Establish governance frameworks for AI, Digital Adoption Platforms (DAPs), knowledge management, Atlassian/Jira, including roles, responsibilities, and escalation processes.
- Create metrics to track the effectiveness, compliance, and ethical use of these systems.
- Define, document and lead the adoption of clear policies and procedures for system usage (e.g., AI platform, DAP), data security, access control, and change management (including employee training).
- Establish and maintain a robust system of internal controls to mitigate risks and ensure data integrity.
- Conduct regular audits and assessments to identify and address compliance gaps.
Compliance Management:
- Ensure that AI applications comply with data privacy regulations (e.g., GDPR, CCPA) and/or other regional AI governance laws.
- Audit datasets used for AI training to avoid bias and ensure ethical standards.
- Monitor AI outputs for compliance with industry-specific regulations.
- Monitor and analyze data usage patterns to identify trends and potential risks.
- Ensure digital adoption platforms adhere to security standards and data protection laws when integrating with enterprise systems.
AI/ML Governance:
- Partner with GRC, Security and Legal teams to develop and implement governance frameworks for the ethical and responsible use of AI/ML technologies.
- Ensure compliance with relevant AI/ML regulations and best practices.
- Monitor and mitigate potential biases and risks associated with AI/ML systems.
- Maintain detailed records of AI models, including datasets, training processes, algorithms, and decisions to support compliance and audits.
Knowledge Management & Sharing:
- Establish and maintain a centralized knowledge base for system documentation, best practices, compliance guidelines, governance frameworks, and training materials.
- Promote knowledge sharing and collaboration across the R&D team.
- Integrate compliance, governance, and usage guidelines into DAP workflows for contextual, real-time learning.
System Compliance & Security:
- Monitor and audit systems to ensure adherence to governance policies.
- Monitor and ensure compliance with all relevant security standards and best practices.
- Collaborate with IT security teams to identify and address potential security threats.
- Investigate and respond to security incidents as needed.
Vendor and Third-Party Management:
- Assess and monitor vendors providing AI or DAP solutions for adherence to regulatory and contractual obligations.
- Partner with the Strategy and Architecture team to evaluate compliance and governance impacts when integrating AI or DAPs with existing enterprise systems.
Stakeholder Management:
- Build and maintain strong relationships with key stakeholders across the organization, including R&D leadership, IT, legal, and compliance.
- Communicate effectively with stakeholders on compliance issues and best practices.
- Facilitate collaboration between technical teams and business units to ensure AI and DAP policies are understood and adopted effectively.
Training and Adoption:
- Train employees on compliant and ethical use of AI and DAPs, ensuring systems are used effectively and responsibly.
Continuous Improvement:
- Continuously monitor and evaluate the effectiveness of governance frameworks and make necessary adjustments.
- Analyze data on employee/user behavior in core systems and adoption of key business processes. Partner with teams such as Strategy and Architecture to bake these findings into future state architecture and processes.
- Stay abreast of emerging technologies, industry best practices, and regulatory changes.
Deliverables from the Role
These may include, but are not limited to:
- Compliance Reports: Regular reports on AI and DAP compliance status and risks.
- Governance Policies: A living document of compliance and governance best practices that evolves with organizational needs.
- Incident Response Plans: Clear protocols for addressing governance or compliance breaches.
- Training Programs: Comprehensive compliance training for users and administrators.
- Dynamic, user-friendly knowledge base accessible through DAPs and KM systems.
- Video tutorials, compliance playbooks, and use-case demonstrations integrated into DAPs.
What you’ll need (basic qualifications):
- 4+ years of experience in a governance, compliance, or risk management role, preferably within a technology-focused organization.
- Good understanding of data privacy regulations (e.g., GDPR, CCPA) and security best practices (e.g., ISO 27001).
- Experience with data governance frameworks, data quality management, and data security controls.
- Familiarity with AI/ML technologies (implementation) and their potential risks and ethical considerations.
- Familiarity with a Digital Adoption Platform (DAP)
- Strong analytical and problem-solving skills.
- Excellent communication, interpersonal, and presentation skills.
- Ability to work a) independently, and b) as part of a team.
- Strong project management and organizational skills.
HashiCorp welcomes all qualified candidates who have authorization to work in the United States to apply - HashiCorp will not be sponsoring visas for this role at this time.
Individual pay within the range will be determined based on job related-factors such as skills, experience, and education or training.
The base pay range for this role in the SF Bay Area / NYC area is:$146,900—$172,800 USDThe base pay range for this role in Seattle Metro, Denver / Boulder Metro, New York (excluding NYC), Washington D.C., or California (excluding SF Bay Area) is:$134,600—$158,400 USDThe base pay range for this role in Colorado (excluding Denver / Boulder Metro) and Washington (excluding Seattle Metro) is:$122,400—$144,000 USDTags: Audits C CCPA Compliance GDPR Governance Incident response ISO 27001 Jira Privacy R&D Risk management Strategy
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.